GNOME NetworkManager 'ipv6/addrconf. c' DoS Vulnerability
GNOME NetworkManager 'ipv6/addrconf. c' DoS Vulnerability
Release date:
Updated on:
Affected Systems:
GNOME NetworkManager
Description:
Bugtraq id: 76814
CVE (CAN) ID: CVE-2015-0272
GNOME NetworkManager is a network management package.
GNOME NetworkManager does not effectively verify the specially crafted MTU value in the IPv6 RA message, that is, it is set to the MTU of the device. A security vulnerability exists. Remote attackers can exploit this vulnerability to cause denial of service (IPv6 traffic interruption ).
<* Source: vendor
*>
Suggestion:
Vendor patch:
GNOME
-----
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Https://bugzilla.redhat.com/show_bug.cgi? Id = 1192132
Http://cgit.freedesktop.org/NetworkManager/NetworkManager/commit? Id = d5fc88e573fa58b93034b04d35a2454f5d28cad9
This article permanently updates the link address: